ebpf-web-fingerprint
a golang library and webserver for fast TCP & TLS fingerprinting, powered by eBPF
File Explorer
Download Latest Version (.zip)- main.go
- run-in-prod.md
- bpf_endian.h
- bpf_helper_defs.h
- bpf_helpers.h
- LICENSE.BSD-2-Clause
- net_headers.h
- update.sh
- routes.go
- run.go
- tcpinfo.go
- tcpinfo_test.go
- bpfprobe.go
- endianness.go
- key.go
- lookup.go
- parse_tcp.go
- xdp.c
- xdp_bpfeb.go
- xdp_bpfeb.o
- xdp_bpfel.go
- xdp_bpfel.o
- handshake.go
- lookup.go
- tcpconn.go
- wrappers.go
- check_kernel_features.sh
- netns_setup.sh
- netns_teardown.sh
- read_ktrace_logs.sh
- .gitignore
- client.go
- .gitignore
- go.mod
- go.sum
- LICENSE
- Makefile
- notes-httpgo.md
- README.md
- roadmap.md
- san.cnf
# Installation Guide
1. Get the code
git clone https://github.com/robalb/ebpf-web-fingerprint
Downloads the entire project code from GitHub to your computer.
cd ebpf-web-fingerprint
Moves into the project folder you just downloaded.
2. Official Install Script
Easy RecommendedPrerequisites
- APT (Debian/Ubuntu ๊ณ์ด) Built into Debian/Ubuntu-based Linux distributions.
sudo apt install clang-18 llvm-18
Installs directly from the APT package repository (Debian/Ubuntu-based).
After installing, open a new terminal and run the program's version command (e.g. --version) to confirm it worked.
Pulled directly from this repo's README.
3. Go
MediumPrerequisites
go build ./...
Compiles the Go program into an executable.
go run .
Runs the Go program directly without a separate build step.
If the build finishes without errors, it worked. If you used go run ., check the terminal output.
4. Make
MediumPrerequisites
- Git Needed to download the project code from GitHub.
- Make Usually pre-installed on Linux/macOS. On Windows, install separately (e.g. via MSYS2 or WSL).
make testns_setup
Compiles the code based on the generated build configuration to produce an executable.
make testns_run
Compiles the code based on the generated build configuration to produce an executable.
If it finishes without errors, it worked. Try running the generated executable directly.
Pulled directly from this repo's README.
// repository documentation
Was this content helpful?
(0 ratings)
